瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 发现不知名病毒??有日志....有样本...

1234   1  /  4  页   跳转

发现不知名病毒??有日志....有样本...

发现不知名病毒??有日志....有样本...

这是瑞星发现不知名病毒后,要发给瑞星公司的邮件里的附件TXT里的内容,请帮我一下,到底是怎么一回事呀,(有样本....)
如果有兴趣的,请QQ联系,因为我不知道该如何提交附件到论坛?

EGISTRY RECORD

---------------------------------------------------


HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Synchronization Manager          mobsync.exe /logon
NVIDIA nTune          "C:\Program Files\NVIDIA Corporation\nTune\\nTune.exe" clear
ATICCC          "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
SoundMan          SOUNDMAN.EXE
IMSCMig          C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload
RavTask          "E:\RAVRETRY\Rising\Rav\RavTask.exe" -system
Windows Password Guard          E:\Program Files\Windows密码防盗大师\Windows_Password_Gua
SunJavaUpdateSched          C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices
Current operation system is no this registory path


HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServicesOnce
Current operation system is no this registory path


HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnceEx

HKEY_CLASSES_ROOT\Exefile\shell\open\command
Default          "%1" %*

HKEY_CLASSES_ROOT\Txtfile\shell\open\command
Default          %SystemRoot%\system32\NOTEPAD.EXE %1

---------------------------------------------------

WIN.INI

---------------------------------------------------


AppInit_DLLs=
Beep=yes
BorderWidth=-15
CoolSwitch=1
CursorBlinkRate=530
DefaultSeparateVDM=no
DeviceNotSelectedTimeout=15
DoubleClickHeight=4
DoubleClickSpeed=614
DoubleClickWidth=4
DragFullWindows=0
InitialKeyboardIndicators=2
KeyboardDelay=1
KeyboardSpeed=31
LowPowerActive=0
LowPowerTimeOut=0
MouseSpeed=1
MouseThreshold1=6
MouseThreshold2=10
PowerOffActive=0
PowerOffTimeOut=0
ScreenSaveActive=1
ScreenSaveTimeOut=300
SnapToDefaultButton=0
Spooler=yes
swapdisk=
SwapMouseButtons=0
TransmissionRetryTimeout=90
DebugOptions=2048
Documents=
DosPrint=no
NetMessage=no
NullPort=None
Programs=com exe bat pif cmd
load=
run=
Device=EPSON Stylus C67 Series,winspool,Ne01:
---------------------------------------------------

SYSTEM.INI

---------------------------------------------------


ScreenSaverIsSecure=0
SCRNSAVE.EXE=C:\WINNT\system32\ssflwbox.scr
Shell=Explorer.exe
comm.drv=comm.drv
display.drv=vga.drv
drivers=mmsystem.dll
fixedfon.fon=vgafix.fon
fonts.fon=vgasys.fon
keyboard.drv=keyboard.drv
language.dll=
mouse.drv=mouse.drv
network.drv=wfwnet.drv
oemfonts.fon=vgaoem.fon
shell=Explorer.exe
system.drv=system.drv
---------------------------------------------------

WININIT.BAK

---------------------------------------------------


---------------------------------------------------

AUTOEXEC.BAT

---------------------------------------------------



---------------------------------------------------

WININIT.BAT

---------------------------------------------------



最后编辑2006-11-09 21:44:59
分享到:
gototop
 

病毒可恶
gototop
 

2006-11-04,19:40:29

System Repair Engineer 2.2.6.605
Smallfrogs (http://www.KZTechs.com)

Windows 2000 Professional Service Pack 4 (Build 2195)
- 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><ctfmon.exe>  [Microsoft Corporation]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  [N/A]
    <run><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <Synchronization Manager><mobsync.exe /logon>  [(Verified)Microsoft Corporation]
    <NVIDIA nTune><"C:\Program Files\NVIDIA Corporation\nTune\\nTune.exe" clear>  [N/A]
    <ATICCC><"C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay>  [N/A]
    <SoundMan><SOUNDMAN.EXE>  [(Verified)Realtek Semiconductor Corp.]
    <IMSCMig><C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload>  [(Verified)Microsoft Corporation]
    <RavTask><"E:\RAVRETRY\Rising\Rav\RavTask.exe" -system>  [Beijing Rising Technology Co., Ltd.]
    <Windows Password Guard><E:\Program Files\Windows密码防盗大师\Windows_Password_Gua>  [N/A]
    <SunJavaUpdateSched><C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe>  [Sun Microsystems, Inc.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Corporation]
    <Userinit><C:\WINNT\system32\userinit.exe,>  [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  [N/A]
[HKEY_CURRENT_USER\Control Panel\Desktop]
    <SCRNSAVE.EXE><C:\WINNT\system32\ssflwbox.scr>  [(Verified)Microsoft Corporation]

==================================
启动文件夹
[Adobe Gamma Loader]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\Adobe Gamma Loader.lnk --> C:\PROGRA~1\COMMON~1\Adobe\CALIBR~1\ADOBEG~1.EXE [Adobe Systems, Inc.]><N>
[Adobe Reader Speed Launch]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\Adobe Reader Speed Launch.lnk --> C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE [Adobe Systems Incorporated]><N>
[Microtek 扫描仪探测器]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\Microtek 扫描仪探测器.lnk --> C:\PROGRA~1\Microtek\SCANWI~1\SCANNE~1.EXE []><N>

==================================
服务
[ASP.NET State Service / aspnet_state]
  <C:\WINNT\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe><Microsoft Corporation>
[Ati HotKey Poller / Ati HotKey Poller]
  <C:\WINNT\System32\Ati2evxx.exe><ATI Technologies Inc.>
[ATI Smart / ATI Smart]
  <C:\WINNT\system32\ati2sgag.exe><>
[C-DillaCdaC11BA / C-DillaCdaC11BA]
  <C:\WINNT\system32\drivers\CDAC11BA.EXE><Macrovision>
[Microsoft Update Service / DiRVIn]
  <C:\WINNT\SYSTEM32\RUNDLL.EXE C:\WINNT\SYSTEM32\WBEM\GGDDNM98.DLL,Export 1087><Microsoft Corporation>
[Logical Disk Manager Administrative Service / dmadmin]
  <C:\WINNT\System32\dmadmin.exe /com><VERITAS Software Corp.>
[Rising Process Communication Center / RsCCenter]
  <"E:\RAVRETRY\Rising\Rav\CCenter.exe"><Beijing Rising Technology Co., Ltd.>
[Rising RealTime Monitor / RsRavMon]
  <"E:\RAVRETRY\Rising\Rav\Ravmond.exe"><Beijing Rising Technology Co., Ltd.>
[Portable Media Serial Number Service / WmdmPmSN]
  <C:\WINNT\System32\svchost.exe -k netsvcs-->C:\WINNT\system32\mspmsnsv.dll><Microsoft Corporation>

==================================
驱动程序
[Service for Realtek AC97 Audio (WDM) / ALCXWDM]
  <system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
[ati2mtag / ati2mtag]
  <System32\DRIVERS\ati2mtag.sys><ATI Technologies Inc.>
[Rising TDI Base Driver / BaseTDI]
  <System32\DRIVERS\BaseTDI.SYS><Beijing Rising Technology Co., Ltd.>
[CdaC15BA / CdaC15BA]
  <\??\C:\WINNT\system32\drivers\CDAC15BA.SYS><Macrovision Europe Ltd>
[Cdr4_2K / Cdr4_2K]
  <C:\WINNT\SYSTEM32\DRIVERS\Cdr4_2K.SYS><Roxio>
[Cdralw2k / Cdralw2k]
  <C:\WINNT\SYSTEM32\DRIVERS\Cdralw2k.SYS><Roxio>
[dmboot / dmboot]
  <System32\drivers\dmboot.sys><VERITAS Software Corp.>
[Logical Disk Manager Driver / dmio]
  <\SystemRoot\System32\drivers\dmio.sys><VERITAS Software Corp.>
[dmload / dmload]
  <\SystemRoot\System32\drivers\dmload.sys><VERITAS Software Corp.>
[ExpScaner / ExpScaner]
  <\??\E:\RAVRETRY\Rising\Rav\ExpScan.sys><>
[WAN Miniport Driver For PPPoE Protocol / GNetPPPoE]
  <system32\DRIVERS\PPPoE.SYS><Guangdong Data Communications Network Co.Ltd.>
[HookCont / HookCont]
  <\??\E:\RAVRETRY\Rising\Rav\HOOKCONT.sys><Rising tech Co. ltd>
[HookReg / HookReg]
  <\??\E:\RAVRETRY\Rising\Rav\HookReg.sys><>
[HookSys / HookSys]
  <\??\E:\RAVRETRY\Rising\Rav\HookSys.sys><Rising>
[MEMSCAN / MEMSCAN]
  <\??\E:\RAVRETRY\Rising\Rav\MEMSCAN.sys><瑞星软件有限公司>
[Netgroup Packet Filter / NPF]
  <system32\drivers\npf.sys><Politecnico di Torino>
[npkcrypt / npkcrypt]
  <\??\D:\QQ\npkcrypt.sys><INCA Internet Co., Ltd.>
[NVIDIA nForce Networking Controller Driver / NVENETFD]
  <system32\DRIVERS\NVENETFD.sys><NVIDIA Corporation>
[NVIDIA Network Bus Enumerator / nvnetbus]
  <system32\DRIVERS\nvnetbus.sys><NVIDIA Corporation>
[paraudio / paraudio]
  <\??\C:\WINNT\system32\drivers\paraudio.sys><Microsoft Corporation>
[Direct Parallel Link Driver / Ptilink]
  <System32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[RSPPSYS / RSPPSYS]
  <\??\E:\RAVRETRY\RISING\RAV\RSPPSYS.sys><Rising>
gototop
 

==================================
浏览器加载项
[VnetCookie Class]
  {4E83D567-4697-4F7B-B1F0-A513B01DB89A} <c:\PROGRA~1\chinanet\VNETTR~1.DLL, >
[@shdoclc.dll,-866]
  {c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <D:\QQ\QQ.EXE, TENCENT>
[QQIEFloatBarCfgCmd Class]
  {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} <, N/A>
[电台(&R)]
  {8E718888-423F-11D2-876E-00A0C9082467} <C:\WINNT\system32\msdxm.ocx, Microsoft Corporation>
[卡卡上网安全助手]
  {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINNT\system32\kakatool.dll, Beijing Rising Technology Co., Ltd.>
[PGEdit Class]
  {2BFAA61B-5C83-4865-8281-D8BDBF863061} <C:\Program Files\GnetSecCtrl\PG_ATL_Edit.dll, 银联网络支付集团有限公司>
[WebActivater Control]
  {3D8F74EE-8692-4F8F-B8D2-7522E732519E} <C:\WINNT\system32\WEBACT~1.OCX, QQ>
[UploadControl Control]
  {52FF336D-A05D-4A14-A3A1-7B6B4B427F88} <C:\WINNT\system32\UPLOAD~1.OCX, 广州网易互动娱乐有限公司>
[WUWebControl Class]
  {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINNT\system32\wuweb.dll, Microsoft Corporation>
[Java Plug-in]
  {8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll, N/A>
[WebActivater Control]
  {C661F36D-DF85-4EF4-83C7-E107B83D04B1} <C:\WINNT\system32\3DShowVM.ocx, QQ>
[Java Plug-in]
  {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll, N/A>
[Java Plug-in 1.5.0_06]
  {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll, Sun Microsystems, Inc.>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINNT\system32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.>
[CPasswordEditCtrl Object]
  {E787FD25-8D7C-4693-AE67-9406BC6E22DF} <C:\WINNT\system32\qqedit\qqedit.dll, 腾讯科技(深圳)有限公司>
[上传到QQ网络硬盘]
  <D:\QQ\AddToNetDisk.htm, N/A>
[添加到QQ自定义面板]
  <D:\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
  <D:\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <D:\QQ\SendMMS.htm, N/A>

==================================
gototop
 

正在运行的进程
[PID: 156][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.00.2195.6601]
[PID: 180][\??\C:\WINNT\system32\csrss.exe]  [Microsoft Corporation, 5.00.2195.6601]
[PID: 204][\??\C:\WINNT\system32\winlogon.exe]  [Microsoft Corporation, 5.00.2195.6714]
    [C:\WINNT\system32\Ati2evxx.dll]  [ATI Technologies Inc., 6.14.10.4129]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
[PID: 232][C:\WINNT\system32\services.exe]  [Microsoft Corporation, 5.00.2195.6700]
    [C:\WINNT\system32\dmserver.dll]  [VERITAS Software Corp., 2195.6605.297.3]
[PID: 244][C:\WINNT\system32\lsass.exe]  [Microsoft Corporation, 5.00.2195.6695]
[PID: 352][C:\WINNT\System32\Ati2evxx.exe]  [ATI Technologies Inc., 6.14.10.4129]
    [C:\WINNT\System32\Ati2edxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2500]
[PID: 428][C:\WINNT\system32\svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
[PID: 452][E:\RAVRETRY\Rising\Rav\CCenter.exe]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 3]
[PID: 508][C:\WINNT\system32\spoolsv.exe]  [Microsoft Corporation, 5.00.2195.7059]
    [C:\WINNT\system32\E_FLMAAP.DLL]  [SEIKO EPSON CORPORATION, 5, 7, 0, 0]
    [C:\WINNT\system32\spool\PRTPROCS\W32X86\Smproc.dll]  [Windows (R) 2000 DDK provider, 5.00.2195.1620]
    [C:\WINNT\system32\spool\PRTPROCS\W32X86\vprproc.dll]  [Windows (R) 2000 DDK provider, 5.00.2195.1620]
[PID: 552][C:\WINNT\system32\drivers\CDAC11BA.EXE]  [Macrovision, 4.20.020]
[PID: 620][E:\RAVRETRY\Rising\Rav\RavStub.exe]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 16]
    [E:\RAVRETRY\Rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
    [E:\RAVRETRY\Rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[PID: 748][C:\WINNT\system32\Ati2evxx.exe]  [ATI Technologies Inc., 6.14.10.4129]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
    [C:\WINNT\system32\Ati2edxx.dll]  [ATI Technologies, Inc., 6, 14, 10, 2500]
[PID: 796][C:\WINNT\Explorer.EXE]  [Microsoft Corporation, 5.00.3700.6690]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
    [C:\WINNT\system32\AcSignIcon.dll]  [Autodesk, 16.0.0.86]
    [C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll]  [Autodesk, 16.0.0.86]
    [C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll]  [Adobe Systems, Inc., 7.0.0.0]
    [E:\RAVRETRY\Rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
    [D:\QQ\qdshm.dll]  [, 1, 0, 101, 20]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, N/A]
    [C:\WINNT\system32\RavExt.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 21]
    [C:\Program Files\ATI Technologies\ATI.ACE\atiacmxx.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Corel\Corel Graphics 12\PROGRAMS\CdrIco.DLL]  [Corel Corporation, 1.0.0.458]
    [C:\Program Files\Corel\Corel Graphics 12\PROGRAMS\CRLUTL.dll]  [Corel Corporation, 1.0.0.458]
    [C:\Program Files\Corel\Corel Graphics 12\PROGRAMS\CRLI18N.dll]  [Corel Corporation, 1.0.0.458]
    [C:\Program Files\Common Files\Adobe\Shell\PSICON.DLL]  [Adobe Systems, Incorporated, 7.0]
[PID: 804][C:\WINNT\System32\svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
[PID: 856][C:\WINNT\system32\MSTask.exe]  [Microsoft Corporation, 4.71.2195.6704]
[PID: 916][C:\WINNT\system32\stisvc.exe]  [Microsoft Corporation, 5.00.2195.6656]
    [C:\WINNT\system32\MSMUSD7.DLL]  [Microtek International Inc., 1.2.0.0]
[PID: 980][C:\WINNT\System32\WBEM\WinMgmt.exe]  [Microsoft Corporation, 1.50.1085.0100]
[PID: 1024][C:\PROGRA~1\Kuree\kpupdate.exe]  [N/A, N/A]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
[PID: 1080][C:\Program Files\ATI Technologies\ATI.ACE\cli.exe]  [ATI Technologies Inc., 1.11.0.0]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_6b89acff\mscorlib.dll]  [N/A, N/A]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system.windows.forms\1.0.5000.0__b77a5c561934e089_4b21d96c\system.windows.forms.dll]  [N/A, N/A]
    [c:\program files\ati technologies\ati.ace\cli.implementation.dll]  [ATI Technologies Inc., 1.2.2217.17118]
    [c:\program files\ati technologies\ati.ace\log.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29141]
    [c:\program files\ati technologies\ati.ace\cli.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29141]
    [c:\program files\ati technologies\ati.ace\log.foundation.service.dll]  [ATI Technologies Inc., 1.2.2217.17268]
    [c:\program files\ati technologies\ati.ace\log.foundation.shared.dll]  [ATI Technologies Inc., 1.2.2147.29163]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_c5a884db\system.dll]  [N/A, N/A]
    [c:\program files\ati technologies\ati.ace\cli.foundation.xmanifestation.dll]  [ATI Technologies Inc., 1.2.2217.17268]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_78a92810\system.xml.dll]  [N/A, N/A]
    [c:\program files\ati technologies\ati.ace\cli.component.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17269]
    [c:\program files\ati technologies\ati.ace\aticccom.dll]  [ATI Technologies Inc., 1.0.0.0]
    [c:\program files\ati technologies\ati.ace\aem.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29141]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system.drawing\1.0.5000.0__b03f5f7f11d50a3a_707be252\system.drawing.dll]  [N/A, N/A]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
gototop
 

[c:\program files\ati technologies\ati.ace\cli.caste.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29143]
    [c:\program files\ati technologies\ati.ace\cli.caste.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17263]
    [c:\program files\ati technologies\ati.ace\cli.component.runtime.shared.dll]  [ATI Technologies Inc., 1.2.2147.29143]
    [c:\program files\ati technologies\ati.ace\dem.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29141]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demosinfo.dll]  [ATI Technologies Inc., 1.2.2147.29147]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demosadapterinfo.dll]  [ATI Technologies Inc., 1.2.2159.16348]
    [c:\program files\ati technologies\ati.ace\dem.graphics.dematiadapterinfo.dll]  [ATI Technologies Inc., 1.2.2147.29155]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demdriversettings.dll]  [ATI Technologies Inc., 1.2.2147.29143]
    [c:\program files\ati technologies\ati.ace\dem.graphics.displaysmanager.shared.dll]  [ATI Technologies Inc., 1.2.2147.29142]
    [c:\program files\ati technologies\ati.ace\atidemgr.dll]  [ATI Technologies Inc., 1.2.2217.17103]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demosmodeinfo.dll]  [ATI Technologies Inc., 1.2.2147.29149]
    [c:\program files\ati technologies\ati.ace\dem.graphics.dematidisplaysmanagersettings.dll]  [ATI Technologies Inc., 1.2.2147.29150]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demverylargedesktopsettings.dll]  [ATI Technologies Inc., 1.2.2147.29146]
    [c:\program files\ati technologies\ati.ace\cli.aspect.multivpu2.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17153]
    [c:\program files\ati technologies\ati.ace\cli.aspect.multivpu2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2182.27456]
    [c:\program files\ati technologies\ati.ace\cli.aspect.multivpu.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17173]
    [c:\program files\ati technologies\ati.ace\cli.aspect.multivpu.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2182.27452]
    [c:\program files\ati technologies\ati.ace\cli.aspect.verylargedesktop.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17153]
    [c:\program files\ati technologies\ati.ace\cli.aspect.verylargedesktop.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29147]
    [c:\program files\ati technologies\ati.ace\cli.aspect.radeon3d.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17190]
    [c:\program files\ati technologies\ati.ace\cli.aspect.radeon3dlegacy.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17187]
    [c:\program files\ati technologies\ati.ace\cli.aspect.displayscolour2.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17157]
    [c:\program files\ati technologies\ati.ace\cli.aspect.displayscolour2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29158]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demdisplayscoloursettings.dll]  [ATI Technologies Inc., 1.2.2147.29145]
    [c:\program files\ati technologies\ati.ace\cli.aspect.displayscolour.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17217]
    [c:\program files\ati technologies\ati.ace\cli.aspect.displayscolour.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29146]
    [c:\program files\ati technologies\ati.ace\cli.aspect.mmvideo.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17203]
    [c:\program files\ati technologies\ati.ace\cli.aspect.mmvideo.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29166]
    [c:\program files\ati technologies\ati.ace\dem.graphics.mmdeintlacingsettings.dll]  [ATI Technologies Inc., 1.2.2147.29167]
    [c:\program files\ati technologies\ati.ace\cli.aspect.videooverlay.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17268]
    [c:\program files\ati technologies\ati.ace\cli.aspect.videooverlay.graphics.runtime.shared.dll]  [ATI Technologies Inc., 1.2.2147.29149]
    [c:\program files\ati technologies\ati.ace\dem.graphics.videooverlay.shared.dll]  [ATI Technologies Inc., 1.2.2147.29142]
    [c:\program files\ati technologies\ati.ace\cli.aspect.smartgart.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17184]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demsmartgartsettings.dll]  [ATI Technologies Inc., 1.2.2147.29146]
    [c:\program files\ati technologies\ati.ace\cli.aspect.vpurecover.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17177]
    [c:\program files\ati technologies\ati.ace\cli.aspect.vpurecover.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29145]
    [c:\program files\ati technologies\ati.ace\cli.aspect.workstationconfig.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17175]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecrt.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17236]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecrt2.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17162]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicelcd.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17227]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicelcd.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29168]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicelcd2.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17157]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicelcd2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29148]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecv.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17232]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecv.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2169.27643]
    [c:\program files\ati technologies\ati.ace\cli.aspect.customformats.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29144]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecv2.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17165]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecv2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2169.27620]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicetv2.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17224]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicetv.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17220]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicedfp.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17230]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicedfp.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29168]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicedfp2.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17159]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicedfp2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29148]
    [c:\program files\ati technologies\ati.ace\cli.aspect.overdrive3.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17196]
    [c:\program files\ati technologies\ati.ace\cli.aspect.overdrive3.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29165]
    [c:\program files\ati technologies\ati.ace\cli.aspect.overdrive2.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17200]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demoverdrivesettings.dll]  [ATI Technologies Inc., 1.2.2147.29164]
    [c:\program files\ati technologies\ati.ace\cli.aspect.powerplay3.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17193]
    [c:\program files\ati technologies\ati.ace\cli.aspect.powerplay3.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29147]
    [c:\program files\ati technologies\ati.ace\dem.graphics.dempowerplaysettings.dll]  [ATI Technologies Inc., 1.2.2154.21069]
    [c:\program files\ati technologies\ati.ace\cli.aspect.displaysoptions.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17211]
    [c:\program files\ati technologies\ati.ace\cli.aspect.integratedumaframebuffer.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17206]
    [c:\program files\ati technologies\ati.ace\cli.aspect.infocentre.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17209]
    [c:\program files\ati technologies\ati.ace\cli.aspect.infocentre.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29155]
    [c:\program files\ati technologies\ati.ace\cli.aspect.hotkeyshandling.graphics.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17168]
    [c:\program files\ati technologies\ati.ace\cli.aspect.hotkeyshandling.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29156]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demmultivpusettings.dll]  [ATI Technologies Inc., 1.2.2182.27432]
    [c:\program files\ati technologies\ati.ace\cli.aspect.radeon3d.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29157]
    [c:\program files\ati technologies\ati.ace\cli.aspect.radeon3dlegacy.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29166]
    [c:\program files\ati technologies\ati.ace\dem.graphics.mmoverlaysettings.dll]  [ATI Technologies Inc., 1.2.2147.29167]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demvideotheatermodesettings.dll]  [ATI Technologies Inc., 1.2.2147.29167]
    [c:\program files\ati technologies\ati.ace\cli.aspect.videooverlay.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29147]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demvideooverlaysettings.dll]  [ATI Technologies Inc., 1.2.2147.29145]
    [c:\program files\ati technologies\ati.ace\cli.aspect.smartgart.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29164]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demvpurecoverinfo.dll]  [ATI Technologies Inc., 1.2.2147.29167]
    [c:\program files\ati technologies\ati.ace\cli.aspect.workstationconfig.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2168.19591]
    [c:\program files\ati technologies\ati.ace\dem.graphics.workstationsettings.dll]  [ATI Technologies Inc., 1.2.2147.29157]
gototop
 

[c:\program files\ati technologies\ati.ace\cli.aspect.devicecrt.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29157]
    [c:\program files\ati technologies\ati.ace\cli.aspect.deviceproperty.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29142]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demdevicecrtsettings.dll]  [ATI Technologies Inc., 1.2.2147.29164]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demdevicecommonsettings.dll]  [ATI Technologies Inc., 1.2.2147.29167]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecrt2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29149]
    [c:\program files\ati technologies\ati.ace\cli.aspect.deviceproperty2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29143]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demdevicecommon2settings.dll]  [ATI Technologies Inc., 1.2.2147.29143]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demdevicelcdsettings.dll]  [ATI Technologies Inc., 1.2.2166.26895]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demdevicecomponentvideosettings.dll]  [ATI Technologies Inc., 1.2.2147.29143]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicetv2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29165]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demdevicetv2settings.dll]  [ATI Technologies Inc., 1.2.2147.29165]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicetv.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29167]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demdevicetvsettings.dll]  [ATI Technologies Inc., 1.2.2147.29157]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demdevicedfpsettings.dll]  [ATI Technologies Inc., 1.2.2147.29164]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demdevicedfp2settings.dll]  [ATI Technologies Inc., 1.2.2147.29147]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demoverdrive3settings.dll]  [ATI Technologies Inc., 1.2.2147.29168]
    [c:\program files\ati technologies\ati.ace\cli.aspect.overdrive2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29149]
    [c:\program files\ati technologies\ati.ace\cli.aspect.displaysoptions.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29157]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demdisplaysmanageroptionssettings.dll]  [ATI Technologies Inc., 1.2.2147.29148]
    [c:\program files\ati technologies\ati.ace\cli.aspect.integratedumaframebuffer.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2210.26509]
    [c:\program files\ati technologies\ati.ace\dem.graphics.demumaframebuffersettings.dll]  [ATI Technologies Inc., 1.2.2147.29147]
    [c:\program files\ati technologies\ati.ace\apm.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29156]
    [C:\WINNT\system32\AcSignIcon.dll]  [Autodesk, 16.0.0.86]
[PID: 1032][C:\WINNT\SOUNDMAN.EXE]  [Realtek Semiconductor Corp., 5.1.0.40]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
[PID: 1068][C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe]  [Sun Microsystems, Inc., 5.0.60.5]
[PID: 1140][C:\WINNT\system32\ctfmon.exe]  [Microsoft Corporation, 1.00.2409.34 built by: Lab06_N]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
[PID: 1188][C:\Program Files\Microtek\ScanWizard 5\ScannerFinder.exe]  [, 1, 0, 0, 1]
    [C:\Program Files\Microtek\ScanWizard 5\SFRes.dll]  [, 1, 0, 0, 1]
    [C:\Program Files\Microtek\ScanWizard 5\scanners\Msmgr32.dll]  [Microtek International Inc., 3.3]
    [C:\Program Files\Microtek\ScanWizard 5\scanners\MS32RES.DLL]  [N/A, N/A]
    [C:\Program Files\Microtek\ScanWizard 5\scanners\MPHASE32.DLL]  [N/A, N/A]
    [C:\Program Files\Microtek\ScanWizard 5\scanners\MSSTI.DLL]  [Microtek International Inc., 1.62.4]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
[PID: 1000][C:\Program Files\ATI Technologies\ATI.ACE\cli.exe]  [ATI Technologies Inc., 1.11.0.0]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_6b89acff\mscorlib.dll]  [N/A, N/A]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system.windows.forms\1.0.5000.0__b77a5c561934e089_4b21d96c\system.windows.forms.dll]  [N/A, N/A]
    [c:\program files\ati technologies\ati.ace\cli.implementation.dll]  [ATI Technologies Inc., 1.2.2217.17118]
    [c:\program files\ati technologies\ati.ace\log.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29141]
    [c:\program files\ati technologies\ati.ace\cli.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29141]
    [c:\program files\ati technologies\ati.ace\log.foundation.service.dll]  [ATI Technologies Inc., 1.2.2217.17268]
    [c:\program files\ati technologies\ati.ace\log.foundation.shared.dll]  [ATI Technologies Inc., 1.2.2147.29163]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_c5a884db\system.dll]  [N/A, N/A]
    [c:\program files\ati technologies\ati.ace\cli.foundation.xmanifestation.dll]  [ATI Technologies Inc., 1.2.2217.17268]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_78a92810\system.xml.dll]  [N/A, N/A]
    [c:\program files\ati technologies\ati.ace\cli.component.wizard.dll]  [ATI Technologies Inc., 1.2.2217.17146]
    [c:\program files\ati technologies\ati.ace\cli.foundation.clients.dll]  [ATI Technologies Inc., 1.2.2147.29142]
    [c:\program files\ati technologies\ati.ace\cli.component.wizard.shared.dll]  [ATI Technologies Inc., 1.2.2147.29144]
    [c:\program files\ati technologies\ati.ace\cli.component.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17269]
    [c:\program files\ati technologies\ati.ace\aticccom.dll]  [ATI Technologies Inc., 1.0.0.0]
    [c:\program files\ati technologies\ati.ace\cli.caste.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29143]
    [c:\program files\ati technologies\ati.ace\aem.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29141]
    [c:\program files\ati technologies\ati.ace\dem.graphics.displaysmanager.shared.dll]  [ATI Technologies Inc., 1.2.2147.29142]
    [c:\program files\ati technologies\ati.ace\cli.caste.graphics.wizard.dll]  [ATI Technologies Inc., 1.2.2217.17148]
    [c:\program files\ati technologies\ati.ace\cli.caste.graphics.wizard.shared.dll]  [ATI Technologies Inc., 1.2.2147.29144]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system.drawing\1.0.5000.0__b03f5f7f11d50a3a_707be252\system.drawing.dll]  [N/A, N/A]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecv.graphics.wizard.dll]  [ATI Technologies Inc., 1.2.2217.17136]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecv2.graphics.wizard.dll]  [ATI Technologies Inc., 1.2.2217.17139]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicelcd.graphics.wizard.dll]  [ATI Technologies Inc., 1.2.2217.17130]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicelcd2.graphics.wizard.dll]  [ATI Technologies Inc., 1.2.2217.17133]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicetv.graphics.wizard.dll]  [ATI Technologies Inc., 1.2.2217.17125]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicetv2.graphics.wizard.dll]  [ATI Technologies Inc., 1.2.2217.17128]
    [c:\program files\ati technologies\ati.ace\cli.aspect.displaysmanager.graphics.wizard.dll]  [ATI Technologies Inc., 1.2.2217.17143]
    [c:\program files\ati technologies\ati.ace\cli.aspect.radeon3d.graphics.wizard.dll]  [ , 1.2.2217.17118]
    [c:\program files\ati technologies\ati.ace\cli.aspect.mmvideo.graphics.wizard.dll]  [ATI Technologies Inc., 1.2.2217.17121]
    [c:\program files\ati technologies\ati.ace\cli.aspect.transcode.local.wizard.dll]  [ATI Technologies Inc., 1.2.2217.17153]
    [c:\program files\ati technologies\ati.ace\cli.aspect.infocentre.graphics.wizard.dll]  [ATI Technologies Inc., 1.2.2217.17123]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecv.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2169.27643]
    [c:\program files\ati technologies\ati.ace\cli.aspect.deviceproperty.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29142]
    [c:\program files\ati technologies\ati.ace\cli.aspect.customformats.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29144]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicecv2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2169.27620]
gototop
 

[c:\program files\ati technologies\ati.ace\cli.aspect.deviceproperty2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29143]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicelcd.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29168]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicelcd2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29148]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicetv.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29167]
    [c:\program files\ati technologies\ati.ace\cli.aspect.devicetv2.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29165]
    [c:\program files\ati technologies\ati.ace\cli.aspect.radeon3d.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29157]
    [c:\program files\ati technologies\ati.ace\cli.aspect.mmvideo.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29166]
    [c:\program files\ati technologies\ati.ace\cli.aspect.transcode.local.shared.dll]  [ATI Technologies Inc., 1.2.0.0]
    [c:\program files\ati technologies\ati.ace\atixclib.dll]  [ , 1.0.0.0]
    [c:\program files\ati technologies\ati.ace\cli.aspect.infocentre.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29155]
[PID: 1216][C:\Program Files\ATI Technologies\ATI.ACE\cli.exe]  [ATI Technologies Inc., 1.11.0.0]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_6b89acff\mscorlib.dll]  [N/A, N/A]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system.windows.forms\1.0.5000.0__b77a5c561934e089_4b21d96c\system.windows.forms.dll]  [N/A, N/A]
    [c:\program files\ati technologies\ati.ace\cli.implementation.dll]  [ATI Technologies Inc., 1.2.2217.17118]
    [c:\program files\ati technologies\ati.ace\log.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29141]
    [c:\program files\ati technologies\ati.ace\cli.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29141]
    [c:\program files\ati technologies\ati.ace\log.foundation.service.dll]  [ATI Technologies Inc., 1.2.2217.17268]
    [c:\program files\ati technologies\ati.ace\log.foundation.shared.dll]  [ATI Technologies Inc., 1.2.2147.29163]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_c5a884db\system.dll]  [N/A, N/A]
    [c:\program files\ati technologies\ati.ace\cli.foundation.xmanifestation.dll]  [ATI Technologies Inc., 1.2.2217.17268]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_78a92810\system.xml.dll]  [N/A, N/A]
    [c:\program files\ati technologies\ati.ace\cli.component.systemtray.dll]  [ATI Technologies Inc., 1.2.2217.17245]
    [c:\program files\ati technologies\ati.ace\cli.caste.graphics.shared.dll]  [ATI Technologies Inc., 1.2.2147.29143]
    [c:\program files\ati technologies\ati.ace\cli.component.runtime.dll]  [ATI Technologies Inc., 1.2.2217.17269]
    [c:\program files\ati technologies\ati.ace\aticccom.dll]  [ATI Technologies Inc., 1.0.0.0]
    [c:\program files\ati technologies\ati.ace\dem.graphics.displaysmanager.shared.dll]  [ATI Technologies Inc., 1.2.2147.29142]
    [c:\program files\ati technologies\ati.ace\aem.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29141]
    [c:\program files\ati technologies\ati.ace\apm.foundation.dll]  [ATI Technologies Inc., 1.2.2147.29156]
    [c:\winnt\assembly\nativeimages1_v1.1.4322\system.drawing\1.0.5000.0__b03f5f7f11d50a3a_707be252\system.drawing.dll]  [N/A, N/A]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
    [c:\program files\ati technologies\ati.ace\zh-chs\cli.component.systemtray.resources.dll]  [ATI Technologies Inc., 1.2.2217.17245]
[PID: 868][C:\Program Files\ChinaNet\VnetClient.exe]  [, 2006, 10, 11, 9]
    [C:\Program Files\ChinaNet\Communicate.dll]  [GDCN, 2006, 2, 15, 1]
    [C:\Program Files\ChinaNet\DialModule.dll]  [GDCN, 2006, 7, 25, 15]
    [C:\PROGRA~1\ChinaNet\CLIENT~1.DLL]  [, 2004, 2, 28, 1]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
    [C:\PROGRA~1\ChinaNet\PLUGIN~1.OCX]  [, 2006, 6, 2, 14]
    [C:\PROGRA~1\ChinaNet\sign.dll]  [0, 2004, 12, 1, 1]
    [C:\PROGRA~1\ChinaNet\WEBPLU~1.DLL]  [, 2005, 8, 18, 1]
    [C:\Program Files\ChinaNet\SysPlug\93d07ada-d3ac-485a-85eb-12ca3cee8375\Vnetsafe114.DLL]  [, 1, 0, 0, 1]
    [C:\PROGRA~1\ChinaNet\Advertis.ocx]  [, 2006, 10, 19, 16]
    [C:\PROGRA~1\ChinaNet\VnetBs.ocx]  [, 2004, 11, 18, 1]
    [C:\PROGRA~1\ChinaNet\VnetSkin.ocx]  [GDDC, 2006, 9, 6, 15]
    [C:\PROGRA~1\ChinaNet\DialogStyle.dll]  [, 1, 0, 0, 1]
    [C:\PROGRA~1\ChinaNet\BDSearch.ocx]  [gdcn, 2006, 9, 7, 14]
    [C:\PROGRA~1\ChinaNet\PageFram.ocx]  [Workgroup, 2006, 9, 21, 18]
    [C:\PROGRA~1\ChinaNet\ACCOUN~1.OCX]  [Workgroup, 2006, 9, 26, 14]
    [C:\PROGRA~1\ChinaNet\AccountMgr.dll]  [, 2006, 9, 26, 9]
    [C:\PROGRA~1\ChinaNet\Gif89a.dll]  [, 2005, 6, 21, 1]
    [C:\PROGRA~1\ChinaNet\NOTIFY~1.OCX]  [Workgroup, 2006, 9, 15, 16]
    [C:\PROGRA~1\ChinaNet\IcosBar.ocx]  [Workgroup, 2006, 9, 25, 9]
    [C:\PROGRA~1\ChinaNet\Timer.ocx]  [, 2006, 9, 8, 17]
    [C:\PROGRA~1\ChinaNet\PLUGIN~2.OCX]  [, 2006, 4, 4, 1]
    [C:\PROGRA~1\ChinaNet\NEWMES~1.DLL]  [, 2006, 9, 23, 16]
    [C:\PROGRA~1\ChinaNet\PassCtrl.dll]  [GDCN, 2006, 3, 1, 16]
    [C:\WINNT\system32\wpcap.dll]  [Politecnico di Torino, 3, 0, 0, 18]
    [C:\WINNT\system32\pthreadVC.dll]  [N/A, N/A]
    [C:\WINNT\system32\packet.dll]  [Politecnico di Torino, 3, 0, 0, 18]
    [C:\PROGRA~1\ChinaNet\PlugPush.dll]  [, 2004, 12, 21, 1]
    [C:\PROGRA~1\ChinaNet\ALLINT~1.DLL]  [, 2006, 10, 16, 20]
    [C:\PROGRA~1\ChinaNet\VNETLO~1.OCX]  [, 2005, 10, 9, 1]
    [C:\PROGRA~1\ChinaNet\StatNum.dll]  [, 2006, 3, 1, 1]
    [C:\PROGRA~1\ChinaNet\VNETON~1.OCX]  [, 2005, 3, 2, 1]
    [C:\PROGRA~1\ChinaNet\ALLFUN~1.DLL]  [GDCN, 2006, 10, 17, 9]
    [C:\PROGRA~1\ChinaNet\VnetOptLog.dll]  [ , 2006, 9, 18, 10]
    [C:\PROGRA~1\ChinaNet\Favorite.ocx]  [, 1, 0, 0, 1]
    [C:\PROGRA~1\ChinaNet\VNETSE~1.OCX]  [, 2006, 9, 26, 9]
    [C:\WINNT\system32\AcSignIcon.dll]  [Autodesk, 16.0.0.86]
    [C:\PROGRA~1\ChinaNet\DlgSkin.ocx]  [, 2006, 8, 29, 15]
    [C:\Program Files\ChinaNet\Base64.dll]  [N/A, N/A]
[PID: 1288][E:\RAVRETRY\Rising\Rav\RsAgent.exe]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 12]
    [E:\RAVRETRY\Rising\Rav\RsCommX.dll]  [rising, 18, 0, 0, 1]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
[PID: 1324][C:\WINNT\msagent\AgentSvr.exe]  [Microsoft Corporation, 2.00.0.3422]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
[PID: 1380][D:\QQ\QQ.exe]  [TENCENT, 0, 0, 0, 0]
    [D:\QQ\QQBaseClassInDll.dll]  [, 1, 0, 0, 1]
gototop
 

[D:\QQ\QQHelperDll.dll]  [, 1, 0, 0, 1]
    [D:\QQ\BasicCtrlDll.dll]  [Tencent, 5, 0, 200, 160]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
    [D:\QQ\QQAPI.dll]  [, 1, 0, 0, 1]
    [D:\QQ\TMDlls\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
    [D:\QQ\LoginCtrl.dll]  [, 1, 0, 0, 1]
    [D:\QQ\npkcntc.dll]  [INCA Internet Co., Ltd., 2006, 3, 2, 1]
    [D:\QQ\npkpdb.dll]  [INCA Internet Co., Ltd., 2003, 10, 1, 1]
    [D:\QQ\QQRes.dll]  [tencent, 1, 0, 0, 1]
    [D:\QQ\QQMainFrame.dll]  [N/A, N/A]
    [D:\QQ\CQQApplication.dll]  [N/A, N/A]
    [D:\QQ\NewSkin.dll]  [, 1, 0, 0, 1]
    [D:\QQ\HostingMgr.dll]  [, 1, 0, 0, 1]
    [D:\QQ\CameraDll.dll]  [, 1, 0, 0, 1]
    [D:\QQ\MailSummary.dll]  [, 1, 0, 0, 1]
    [D:\QQ\QQSpace.dll]  [, 1, 0, 0, 1]
    [C:\WINNT\system32\msdmo.dll]  [N/A, N/A]
    [D:\QQ\QQGroupMng.dll]  [, 1, 0, 0, 1]
    [D:\QQ\GroupLive.dll]  [N/A, N/A]
    [D:\QQ\UserDefinedHead.dll]  [, 1, 0, 0, 1]
    [D:\QQ\QQPlugin.dll]  [N/A, N/A]
    [D:\QQ\QQConfigPlugin.dll]  [, 1, 0, 0, 1]
    [D:\QQ\FlashAvatarDll.dll]  [, 1, 4, 0, 1]
    [D:\QQ\QQAvatar.dll]  [N/A, N/A]
    [D:\QQ\LongConnection.dll]  [tencent, 5, 0, 200, 160]
    [D:\QQ\QQFileTransfer.dll]  [Tencent, 5, 0, 202, 180]
    [D:\QQ\QRingMng.dll]  [N/A, N/A]
    [D:\QQ\PhoneAPI.dll]  [, 1, 0, 0, 1]
    [D:\QQ\DialerAllinOne.dll]  [tencent, 1, 4, 0, 0]
    [D:\QQ\QQAllInOne.dll]  [N/A, N/A]
    [D:\QQ\SCCore.dll]  [N/A, N/A]
    [D:\QQ\QQCustomFace.dll]  [N/A, N/A]
    [D:\QQ\QQPet.dll]  [, 1, 0, 0, 1]
    [D:\QQ\ImageOle.dll]  [TODO: <Company name>, 1.0.0.1]
    [D:\QQ\QQMagicFace.dll]  [, 1, 0, 0, 1]
    [D:\QQ\QQSceneMng.dll]  [N/A, N/A]
    [C:\WINNT\system32\AcSignIcon.dll]  [Autodesk, 16.0.0.86]
    [D:\QQ\BQQApplication.dll]  [N/A, N/A]
    [D:\QQ\PersonalDesktop.dll]  [深圳市腾讯计算机系统公司QQ工作小组, 1, 0, 0, 2]
    [D:\QQ\CommercesMng.dll]  [, 1, 0, 0, 1]
    [D:\QQ\QQUdpGetFileLib.dll]  [tencent, 0, 2, 2, 3]
    [D:\QQ\QQAddr.dll]  [深圳市腾讯计算机系统有限公司, 5, 0, 101, 200]
    [D:\QQ\QQPhoneHelper.dll]  [腾讯科技(深圳)有限公司, 2, 0, 6, 60]
    [D:\QQ\QQSysMsgMng.dll]  [N/A, N/A]
    [D:\QQ\GroupConnection.dll]  [Tencent, 5, 0, 202, 170]
    [D:\QQ\QQZip.dll]  [tencent, 0, 3, 2, 4]
    [C:\WINNT\system32\Macromed\Flash\Flash8b.ocx]  [Macromedia, Inc., 8,0,24,0]
[PID: 1640][D:\QQ\TMDlls\TIMPlatform.exe]  [tencent, 0, 3, 1, 8]
    [D:\QQ\TMDlls\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
[PID: 940][D:\TT\TTraveler.exe]  [腾讯公司, 3.1.0.261]
    [C:\WINNT\system32\AcSignIcon.dll]  [Autodesk, 16.0.0.86]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
    [C:\WINNT\system32\kakatool.dll]  [Beijing Rising Technology Co., Ltd., 2, 0, 0, 9]
    [D:\TT\Plugins\QQFloatBar\QQFloatBar4TT2.dll]  [腾讯公司, 1, 1, 0, 5]
    [D:\TT\Plugins\TWeather\TWeather.dll]  [, 1, 0, 0, 3]
    [D:\TT\PersonalDesktop.dll]  [深圳市腾讯计算机系统公司QQ工作小组, 1, 0, 0, 4]
    [C:\WINNT\system32\Macromed\Flash\Flash8b.ocx]  [Macromedia, Inc., 8,0,24,0]
[PID: 436][D:\TT\TCPlus.exe]  [腾讯公司, 1, 0, 0, 5]
    [D:\TT\QQDownload.dll]  [Tencent Technology (Shenzhen) Company Limited, 1, 0, 101, 28]
    [D:\TT\TNProxy.dll]  [Tencent Technology(Shenzhen) Company Limited, 2, 1, 101, 60]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
    [C:\WINNT\system32\AcSignIcon.dll]  [Autodesk, 16.0.0.86]
[PID: 1808][C:\util\acdsee\ACDSee32.exe]  [ACD Systems, Ltd., 2, 4, 3, 0]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
    [C:\WINNT\system32\AcSignIcon.dll]  [Autodesk, 16.0.0.86]
[PID: 1876][C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe]  [Adobe Systems Incorporated, 7.0.8.2006051600]
    [C:\WINNT\system32\AcSignIcon.dll]  [Autodesk, 16.0.0.86]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\BIB.dll]  [Adobe Systems Incorporated, 1.1.18]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.dll]  [Adobe Systems Incorporated, 7.0.8.2006051600]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\AGM.dll]  [Adobe Systems Incorporated, 4.14.45]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\CoolType.dll]  [Adobe Systems Incorporated, 5.01.41]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\ACE.dll]  [Adobe Systems Incorporated, 2.07.28]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
    [c:\program files\adobe\acrobat 7.0\reader\rdlang32.chs]  [Adobe Systems Incorporated, 7.0.7.2006011300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Accessibility.api]  [Adobe Systems Incorporated, 7.0.7.2006011300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\AcroForm.api]  [Adobe Systems Incorporated, 7.0.8.2006051600]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Annots.api]  [Adobe Systems Incorporated, 7.0.7.2006011300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Checkers.api]  [Adobe Systems Incorporated, 7.0.5.2005092300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\DigSig.api]  [Adobe Systems Incorporated, 7.0.8.2006051600]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\eBook.api]  [Adobe Systems Incorporated, 7.0.0.2004121400]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\EScript.api]  [Adobe Systems Incorporated, 7.0.8.2006051600]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\EWH32.api]  [Adobe Systems Incorporated, 7.0.8.2006051600]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\HLS.api]  [Adobe Systems Incorporated, 7.0.0.2004121400]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\IA32.api]  [Adobe Systems Incorporated, 7.0.5.2005092300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\ImageViewer.API]  [Adobe Systems Inc., 7.0.0.41005]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\LegalPDF.api]  [Adobe Systems Incorporated, 7.0.5.2005092300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\MakeAccessible.api]  [Adobe Systems Incorporated, 7.0.5.2005092300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia.api]  [Adobe Systems Incorporated, 7.0.5.2005092300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PDDom.api]  [Adobe Systems Incorporated, 7.0.7.2006011300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PictureTasks.api]  [Adobe Systems Incorporated, 7.0.0.2004121400]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PPKLite.api]  [Adobe Systems Incorporated, 7.0.8.2006051600]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\reflow.api]  [Adobe Systems Incorporated, 7.0.5.2005092300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\SaveAsRTF.api]  [Adobe Systems Incorporated, 7.0.5.2005092300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Search.api]  [Adobe Systems Incorporated, 7.0.0.2004121400]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\SendMail.api]  [Adobe Systems Incorporated, 7.0.5.2005092300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Soap.api]  [Adobe Systems Incorporated, 7.0.5.2005092300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Spelling.api]  [Adobe Systems Incorporated, 7.0.5.2005092300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Updater.api]  [Adobe Systems Incorporated, 7.0.8.2006051600]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\weblink.api]  [Adobe Systems Incorporated, 7.0.7.2006011300]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Spelling.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PPKLite.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Accessibility.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\AcroForm.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Annots.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Checkers.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\DigSig.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\eBook.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\EScript.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\EWH32.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\HLS.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PDDom.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PictureTasks.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\reflow.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\SaveAsRTF.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Search.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\SendMail.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Soap.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Updater.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\weblink.CHS]  [N/A, N/A]
    [C:\Program Files\Adobe\Acrobat 7.0\Reader\esdupdate.dll]  [Adobe Systems, 3.1.0.9]
[PID: 1556][F:\系统工具\新建文件夹\sreng2(1)\SREng\SREng.exe]  [Smallfrogs Studio, 2.2.6.605]
    [C:\WINNT\system32\HYJT.IME]  [衡阳水晶情缘工作室, 4.00.950]
    [C:\WINNT\system32\AcSignIcon.dll]  [Autodesk, 16.0.0.86]

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINNT\hh.exe" %1]
.HLP  OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1      localhost

==================================
gototop
 

有日志,不过机子这几天真的很慢,而且常常死机,有时慢的程度,慢到那个桌面什么都看不到.最后还得重启动....高手能不能帮帮我这个可怜的菜鸟呀~~~~
gototop
 
1234   1  /  4  页   跳转
页面顶部
Powered by Discuz!NT